Note: This is an archival copy of Security Sun Alert 201454 as previously published on http://sunsolve.sun.com.
Latest version of this security advisory is available from http://support.oracle.com as Sun Alert 1001095.1.
Article ID : 1001095.1
Article Type : Sun Alerts (SURE)
Last reviewed : 2010-01-24
Audience : PUBLIC
Copyright Notice: Copyright © 2010, Oracle Corporation and/or its affiliates.

Sun ONE Web Server "Denial of Service" Vulnerability



Category
Security

Release Phase
Resolved

Bug Id
4842190

Date of Resolved Release
02-DEC-2003

Impact

A vulnerability in the Sun ONE Web Server may be exploited to crash the web server (a type of "Denial of Service").


Contributing Factors

This issue can occur in the following releases:

  • Sun ONE/iPlanet Web Server 4.1 Service Pack 12 and earlier
  • Sun ONE/iPlanet Web Server 6.0 Service Pack 5 and earlier

Note: This issue only affects the Sun ONE/iPlanet Web Server running on the Windows Platform.


Symptoms

The web server exits unexpectedly with no error messages written to log files.


Workaround

There is no workaround. Please see the "Resolution" section below.


Resolution

This issue is addressed in the following releases:

  • Sun ONE/iPlanet Web Server 4.1 Service Pack 13 or later
  • Sun ONE/iPlanet Web Server 6.0 Service Pack 6 or later

available at http://wwws.sun.com/software/download/inter_ecom.html#webs.



Modification History

Product
Sun Java System Web Server 7.0




























Attachments
This solution has no attachment